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What is claimed is: 



1 1 . A process carried out in a usage-measuring server for controlling access to usage data 

2 collected in a usage-based licensing system and metric data generated therefrom, comprising: 

3 receiving a log-in communication from a remote user containing the user's user name 

4 and password; 

5 using said user name and password to authenticate the identity of the user; 

6 if the user is not authenticated, sending an access denied message; 

7 if the user is authenticated, sending an inquiry to the user requesting him to identify 

8 which client(s), which provisioning lists and/or which resource(s) and/or usage data, metric data 

9 and/or CSU data is/are of interest and, if metric, raw usage data and/or CSU data is of interest, 
10 which of the metric, raw usage data, and/or CSU data the user wants to view and/or download; 



b k 11 receiving a message indicating which client(s) and resource(s) are of interest and, if 

|I 12 the metric, usage or CSU data of the identified client(s) and resource(s) are of interest, which 

S3- 

Q 13 metric, raw usage data, and/or CSU data the user wants to view and/or download; 

FU- 14 consulting configuration data to determine if this user has access to data for the 

Jjj. 15 ciient(s) and/or resource(s) and any metric, raw usage and/or CSU data the user requested; 

Q 16 if not, sending an access denied message; and 

• 17 if the user is allowed to have access to the data of the client(s) and resource(s) 

y s 18 identified, then retrieving and transmitting the requested data to the user. 



!T ; 1 2. The process of claim 1 wherein said remote user access said client and resource data 

fj;.. 

p 2 over the internet or by any other wide area network or by direct dial up access. 

1 3. A process carried out in a usage-measuring server for controlling access to usage data 

2 collected in a usage-based licensing system and metric data generated therefrom, comprising: 

3 receiving a log-in communication from a remote user containing the user's user name 

4 and password; 

5 using said user name and password to authenticate the identity of the user; 

6 if the user is not authenticated, sending an access denied message; 

7 if the user is authenticated, sending an inquiry to the user requesting him to identify 

8 which data the user wants to view and/or download; 

9 receiving a message indicating which data is/are of interest; 

10 consulting configuration data to determine if this user has access to the requested 
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data; 

if not, sending an access denied message; 

if the user is allowed to have access to the requested data then retrieving and 
transmitting the requested data to the user. 



4. The process of claim 3 further comprising the steps of: 

sending a message to the user inquiring if she has any new client(s) and/or 
resource(s) to declare; 

if the user has no new resource(s) and/or client(s) to declare, terminating the user's 
connection or otherwise ending the session; 

if the user indicates she has new resource(s) and/or client(s) to declare, requesting 
transmission of data identifying the resource(s) and/or client(s) and the attributes of each; and 

creating new data entries in the data structure of said usage measuring server which 
memorialize said new resource(s) and/or new client(s) and their attributes and relationships to 
other data entries in the data structure. 



5. A process carried out in a usage-measuring server for controlling access to usage data 
collected in a usage-based licensing system data structure containing, among other things, usage 
data and metric data generated therefrom, comprising: 

receiving a log-in communication from a remote user containing the user's user name 
and password; 

using said user name and password to authenticate the identity of the user; 

if the user is not authenticated, sending an access denied message; 

if the user is authenticated, sending an inquiry to the user requesting him to identify 
which data the user wants to view and/or download; 

receiving a message indicating which data is/are of interest; 

determining if there are links in said data structure that directly or indirectly couple a 
data entry representing said authenticated user to the requested data; 

if not, sending an access denied message; 

if there are such links, then retrieving the portion of the requested data to which the 
user is allowed to have access and transmitting it to the user. 



6. The process of claim 5 further comprising the steps of: 

sending a message to said user to which said data was sent inquiring whether the 
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3 user wishes to modify any of the data sent to the user; 

4 receiving a message back indicating modification is desired of specified data; 

5 checking configuration data to determine if modification of the specified data is 

6 allowed; 

7 if so, sending a message indicating modification is allowed; 

8 if not, sending a message indication modification is not allowed; 

9 if modification is allowed, and the user modifies the data and sends it back to said 
10 server, storing the modified data. 



7. A server computer programmed with program means for performing the following 
functions: 

1) receiving a log-in communication from a remote user containing the user's user 
name and password; 

2) using said user name and password to authenticate the identity of the user; 

3) if the user is not authenticated, sending an access denied message; 

4) if the user is authenticated, sending an inquiry to the user requesting him to 
identify which data the user wants to view and/or download; 

5) receiving a message indicating which data is/are of interest; 

6) determining if there are links in said data structure that directly or indirectly couple 
a data entry representing said authenticated user to the requested data; 

7) if not, sending an access denied message; 

8) if there are such links, then retrieving the portion of the requested data to which 
the user is allowed to have access and transmitting it to the user. 



1 8. The apparatus of claim 7 wherein said server computer is further programmed by program 

2 means for performing the following additional functions: 

3 sending a message to said user to which said data was sent inquiring whether the 

4 user wishes to modify any of the data sent to the user; 

5 receiving a message back indicating modification is desired of specified data; 

6 checking configuration data to determine if modification of the specified data is 

7 allowed; 

8 if so, sending a message indicating modification is allowed; 

9 if not, sending a message indication modification is not allowed; 

10 if modification is allowed, and the user modifies the data and sends it back to said 
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1 9. The apparatus of claim 7 wherein the server is programmed to implement function 6 by 

2 restricting access to only data that is within the direct family tree of the user who logged in. 

1 10. The apparatus of claim 6 wherein the server is programmed to implement function 6 by 

2 restricting access by a user/licensee to only data entries in the direct family tree of the user who 

3 logged in which includes both the direct licensor from whom said user/licensee took a license but not 

4 any higher level licensor or distributor who licensed said direct licensor as well as direct licensees 

5 who take licenses from said user who logged in so as to prevent any licensee from obtaining 

6 information by which it might attempt to cut out an entity in the distribution chain and take a license 

7 directly from some higher level entity or cut out a licensee subdistributor and license directly to that 

8 licensee subdistributor's licensees. 



*t 1 11. The apparatus of claim 6 wherein the server is programmed to implement function 6 by 

B 2 restricting access to only data that is within the direct family tree of the user who logged in or that is 

3 within an agnostic paradigm with said user. 

M 

£ 

53 1 1 2. A server computer programmed by program means for performing the following 

2 functions: 

§*& 3 receiving a secure log-in communication from a remote user containing the user's 

W 4 user name and password; 

r 5 using said user name and password to authenticate the identity of the user; 

6 if the user is not authenticated, sending a secure access denied message; 

7 if the user is authenticated, sending a secure inquiry message to the user requesting 

8 him to identify which client(s), which provisioning lists and/or which resource(s) and/or usage 

9 data, metric data and/or CSU data is/are of interest and, if metric, raw usage data and/or 

10 CSU data is of interest, which of the metric, raw usage data, and/or CSU data the user wants 

11 to view and/or download; 

12 receiving a secure message from said user indicating which client(s) and resource(s) 

13 are of interest and, if the metric, usage or CSU data of the identified client(s) and resource(s) 

14 are of interest, which metric, raw usage data, and/or CSU data the user wants to view and/or 

15 download; 

16 consulting configuration data to determine if this user has access to data for the 
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17 client(s) and/or resource(s) and any metric, raw usage and/or CSU data the user requested; 

18 if not, sending a secure access denied message; and 

19 if the user is allowed to have access to the data of the client(s) and resource(s) 

20 identified, then retrieving and transmitting by one or more secure messages the requested 

21 data to the user. 



1 13. The server computer of claim 12 further programmed with program means to carry out 

2 the following functions: 

3 sending a message to the user inquiring if she has any new licensees and/or 

4 distributors and/or resource(s) to declare; 

5 if the user has no new resource(s) and/or licensees and/or distributors to declare, 

6 terminating the user's connection or otherwise ending the session; 

jL 7 if the user indicates she has new resource(s) and/or new licensees and/or distributors 

£5 8 to declare, requesting transmission of data identifying the resource(s) and/or licensees and/or 

CJ 9 distributors and the attributes of each; and 

%t 10 creating new data entries in the data structure of said usage measuring server which 

%£- 

yj 11 memorialize said new resource(s) and/or new licensees and/or distributors and their 

© 12 attributes and all relationships between these new entities to other data entries in the data 

y. 1** structure. 
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